Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-29081 | Multiple stored cross-site scripting (XSS) vulnerabilities in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the wifi_sta_ssid or wifi_ap_ssid parameters. |
Thu, 16 Oct 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Audi universal Traffic Recorder Firmware
|
|
| CPEs | cpe:2.3:h:audi:universal_traffic_recorder:2.0:*:*:*:*:*:*:* cpe:2.3:o:audi:universal_traffic_recorder_firmware:1.52:*:*:*:*:*:*:* |
|
| Vendors & Products |
Audi universal Traffic Recorder Firmware
|
Mon, 15 Sep 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Mon, 15 Sep 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Audi
Audi universal Traffic Recorder |
|
| Vendors & Products |
Audi
Audi universal Traffic Recorder |
Fri, 12 Sep 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple stored cross-site scripting (XSS) vulnerabilities in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the wifi_sta_ssid or wifi_ap_ssid parameters. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-09-15T15:11:24.882Z
Reserved: 2025-04-22T00:00:00.000Z
Link: CVE-2025-45585
Updated: 2025-09-15T14:46:14.859Z
Status : Analyzed
Published: 2025-09-12T21:15:33.897
Modified: 2025-10-16T15:37:05.690
Link: CVE-2025-45585
No data.
OpenCVE Enrichment
Updated: 2025-09-15T10:43:41Z
EUVD